Skip to main content

WatchGuard

Overview

WatchGuard Firewall, the advanced and reliable firewall solutions by WatchGuard Technologies, seamlessly integrate with Motadata AIOps to provide comprehensive monitoring and management capabilities. With this integration, organizations gain real-time visibility into the performance and security of their WatchGuard Firewalls. Monitor critical firewall metrics such as traffic patterns, connection status, and threat activity to ensure a secure and protected network environment.

Motadata AIOps empowers businesses to proactively detect potential security breaches, troubleshoot firewall issues, and optimize WatchGuard Firewall configurations for improved protection. Receive instant alerts for suspicious activities, intrusion attempts, or policy violations, allowing prompt action to mitigate potential threats.

Prerequisites

Refer Adding network devices for monitoring to understand the prerequisites necessary for monitoring a network device.

List of Supported KPIs

MetricsDescriptionType
ping.min.latency.msMinimum latency (in milliseconds) observed during pingCount
ping.received.packetsNumber of packets received during pingCount
ping.lost.packetsNumber of packets lost during pingCount
ping.max.latency.msMaximum latency (in milliseconds) observed during pingCount
object.targetTarget object identifierString
ping.sent.packetsNumber of packets sent during pingCount
ping.packet.lost.percentPercentage of packet loss during pingPercent
ping.latency.msAverage latency (in milliseconds) observed during pingCount
system.oidSystem Object IdentifierString
started.time.secUptime in Seconds for the monitorCount
started.timeUptime of the monitorString
object.nameName of the monitorString
system.locationLocation of the monitorString
system.descriptionDescription of the monitorString
correlation.metricsCorrelation metrics between network connectionsString
network.connection.tcp.connectionsNumber of TCP connectionsCount
network.connection.udp.connectionsNumber of UDP connectionsCount
network.connection.udp.error.segmentsNumber of UDP error segmentsCount
network.connection.tcp.error.segmentsNumber of TCP error segmentsCount
network.connection.tcp.retransmitted.segmentsNumber of TCP retransmitted segmentsCount
destination.ipDestination IP addressString
destination.portDestination port numberCount
network.connection.protocolProtocol used for network connectionCount
network.connection.stateState of the network connectionString
source.ipSource IP addressString
source.portSource port numberCount
interface.sent.discard.packetsNumber of discarded packets sent on the interfaceCount
interface.in.packetsNumber of incoming packets on the interfaceCount
interface.packetsNumber of packets on the interfaceCount
interface.error.packetsNumber of error packets on the interfaceCount
interface.sent.error.packetsNumber of error packets sent on the interfaceCount
interface.received.discard.packetsNumber of discarded packets received on the interfaceCount
interface.received.octetsNumber of octets received on the interfaceCount
interface.bit.typeBit type of the interfaceCount
statusStatus of the interfaceString
interface.out.packetsNumber of outgoing packets on the interfaceCount
interface.operational.statusOperational status of the interfaceString
interface.admin.statusAdmin status of the interfaceCount
interface.sent.octetsNumber of octets sent on the interfaceCount
interface.last.changeLast change of the interfaceString
interface.received.error.packetsNumber of error packets received on the interfaceCount
interface.discard.packetsNumber of discarded packets on the interfaceCount
started.timeUptime of the interfaceString
started.time.secUptime in seconds of the interfaceString
system.cpu.percentThe percentage of CPU utilization on the SNMP device.Percentage
system.1min.avg.cpu.percentThe 1-minute average percentage of CPU utilization.Percentage
system.5min.avg.cpu.percentThe 5-minute average percentage of CPU utilization.Percentage
system.15min.avg.cpu.percentThe 15-minute average percentage of CPU utilization.Percentage
system.active.connectionsThe number of active connections on the SNMP device.Count
system.os.versionThe operating system version running on the SNMP device.String
tunnel.life.time.secThe lifetime duration of the tunnel in seconds.Count
tunnel.active.time.secThe time duration that the tunnel has been active in seconds.Count
tunnelThe identifier or name of the tunnel.String
tunnel.source.ip.addressThe source IP address of the tunnel.String
tunnel.out.traffic.bytes.rateThe rate of outgoing traffic in bytes per second through the tunnel.Count
tunnel.in.traffic.bytes.rateThe rate of incoming traffic in bytes per second through the tunnel.Count
tunnel.destination.ip.addressThe destination IP address of the tunnel.String
tunnel.nameThe name or label assigned to the tunnel.String
tunnel.statusThe current status of the tunnel.String
remote.vpn.active.connectionsThe number of active VPN connections from remote clients.Count
remote.vpn.client.in.traffic.bytes.rateThe incoming traffic rate in bytes per second for VPN clients.Count
remote.vpn.client.out.traffic.bytes.rateThe outgoing traffic rate in bytes per second for VPN clients.Count
remote.vpn.client.protocolThe communication protocol used by the VPN client.String
remote.vpn.client.encryption.algorithmThe encryption algorithm used by the VPN client.String
remote.vpn.clientThe identifier or name of the remote VPN client.String
remote.vpn.client.duration.secThe duration of the VPN client connection in seconds.Count
remote.vpn.client.app.versionThe version of the VPN client application.String
remote.vpn.client.durationThe duration of the VPN client connection.String
remote.vpn.client.statusThe status of the VPN client connection.String
remote.vpn.user.groupThe user group associated with the remote VPN client.String
remote.vpn.client.appThe application name of the remote VPN client.String